cbcvebase.
CVE-2007-2120
published 2007-04-18

CVE-2007-2120: The Oracle Discoverer servlet in Oracle Application Server 9.0.4.3, 10.1.2.0.2, and 10.1.2.2.0 allows remote attackers to shut down an Oracle TNS Listener via…

PriorityP337high7.8CVSS 2.0
AVNACLAuNCNINAC
EPSS
2.98%
85.9th percentile
The Oracle Discoverer servlet in Oracle Application Server 9.0.4.3, 10.1.2.0.2, and 10.1.2.2.0 allows remote attackers to shut down an Oracle TNS Listener via a TNS STOP command in a request that uses the database/TNS alias, aka AS01.

Affected

3 ranges
VendorProductVersion rangeFixed in
oracleapplication_server
oracleapplication_server
oracleapplication_server
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.